CertMain Menu

This document is part of the US-CERT website archive. These documents are no longer updated and may contain outdated information. Links may also no longer function. Please contact info@us-cert.gov if you have any questions about the US-CERT website archive.

Alert (SA06-250A)

Microsoft Word Vulnerability

Systems Affected

Other versions of Word and other Microsoft Office programs may also be affected.

Overview

A vulnerability in Microsoft Word 2000 could allow an attacker to gain control of your computer.

Solution

Do not open untrusted documents

Microsoft has not yet released an update to address this vulnerability. Do not open unfamiliar or unexpected Word or other Office documents, including those received as email attachments or hosted on a web site. For more information, please see Using Caution with Email Attachments.

Description

An attacker could exploit a vulnerability in Microsoft Word 2000 by convincing a user to open a specially crafted Word document. A Word document could be attached to an email message, hosted on a web site, or included in another Office document. This vulnerability may affect other versions of Word and other Microsoft Office programs.

For more technical information, see Vulnerability Note VU#806548 and Microsoft Security Advisory (925059).